
Security News
New Study Identifies 53 Slopsquatting Targets Across 5 Frontier LLMs
Five frontier LLMs generated the same nonexistent package names, leaving 53 available for potential slopsquatting across PyPI and npm.
recipe-shiki
Advanced tools
Shiki language pack for the recipe pharmacological notation
language. Thin wrapper around recipe-tmlanguage's generated
TextMate grammar, shaped to match @shikijs/langs/* so it drops into any
Shiki highlighter — including fine-grained bundles for tiny client payloads.
bun add -D recipe-shiki shiki
# or
npm i -D recipe-shiki shiki
# or, on Deno / from JSR
deno add jsr:@kjanat/recipe-shiki npm:shiki
shiki is a peer dependency — bring your own version (>=3).
import { createHighlighterCore } from "shiki/core";
import { createOnigurumaEngine } from "shiki/engine/oniguruma";
const shiki = await createHighlighterCore({
themes: [import("@shikijs/themes/github-dark")],
langs: [import("recipe-shiki")],
engine: createOnigurumaEngine(import("shiki/wasm")),
});
const html = shiki.codeToHtml(source, {
lang: "recipe",
theme: "github-dark",
});
import recipe from "recipe-shiki";
import { createHighlighter } from "shiki";
const shiki = await createHighlighter({
themes: ["github-dark"],
langs: recipe,
});
const html = shiki.codeToHtml(source, {
lang: "recipe",
theme: "github-dark",
});
import recipe from "recipe-shiki";
import { codeToHtml } from "shiki";
const html = await codeToHtml(source, {
lang: recipe[0],
theme: "github-dark",
});
All scopes end in .recipe and follow standard TextMate namespaces
(keyword.control.*, support.function.*, invalid.illegal.*, …), so
every mainstream Shiki theme paints recipe blocks without extra config.
Full scope map: see recipe-tmlanguage's README.
The grammar is not bundled in — recipe-tmlanguage is a runtime
dependency. The npm build keeps a live import … with { type: "json" }
against the recipe-tmlanguage npm package; the JSR build imports
jsr:@kjanat/recipe-tmlanguage. Bumping the grammar means bumping the
recipe-tmlanguage dependency (and this package).
MIT © Kaj Kowalski
FAQs
Shiki language pack for the recipe (.recipe) pharmacological notation.
The npm package recipe-shiki receives a total of 7 weekly downloads. As such, recipe-shiki popularity was classified as not popular.
We found that recipe-shiki demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Five frontier LLMs generated the same nonexistent package names, leaving 53 available for potential slopsquatting across PyPI and npm.

Security News
The White House’s Gold Eagle Initiative aims to coordinate AI-discovered vulnerabilities, validate findings, and accelerate patching across critical software.

Security News
A Shai-Hulud infection exposed Suno's source code, which shows the AI music startup stream-ripped tracks to train its models.